libopenmpt before 0.4.5 allows a crash during playback due to an out-of-bounds read in XM and MT2 files.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://lib.openmpt.org/libopenmpt/2019/05/27/security-update-0.4.5/ | patch release notes |
https://www.debian.org/security/2020/dsa-4729 | third party advisory vendor advisory |